Senior Information Security Analyst

Arvest Bank
Rogers, AR, United States
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
4 years minimum
Compensation
$113,050.0 - $141,310.0
Working hours
Shift work
Job source

Tech stack

Active Directory Authentication Protocols Cyber Security Computer Networks System Configuration Information Security Management Intrusion Detection and Prevention Information Systems Security Architecture Professional Security Information and Event Management Mitre Att&ck Cyber Threat Analysis Information Technology
+5 more
Cybercrime Windows Security Cyber Warfare Splunk SentinelOne Expertise

Job description

SUMMARY: An information security professional with advanced expertise in developing, configuring, deploying, and supporting numerous security tools and configuration. Knowledgeable in best and emerging practices in various information security domains .

We are seeking candidates who embrace diversity, equity, and inclusion in a workplace where everyone feels valued and inspired.

ESSENTIAL DUTIES AND RESPONSIBILITIES include the following. Other duties may be assigned.

  1. Conducts root cause analysis for security issues that may involve extensive analysis. Recommends resolutions to management based on root cause analysis.

  2. Serves as a subject matter expert and resource to other security professionals across multiple platforms and security domains.

  3. Research opportunities to improve IT security processes and standards and identifies best practices to promote across the organization. Present and successfully coordinate implementation of those practices.

  4. Demonstrates a strong understanding of the currents and future threat landscape, its implications for Arvest, and proposes solutions to mitigate risks.

  5. Provides technical guidance to IT colleagues. Serves as a technical resource to bank and IT colleagues on information security.

  6. Uses cyber defense tools for continual monitoring and analysis of system activity to identify malicious activity.

  7. Performs information security reviews and identifies security gaps in security architecture resulting in recommendations for inclusion in information security strategies.

  8. Provides leadership and guidance to cyber security team, ensuring core and foundational information security practices are adhered to at all times.

  9. Leads the security element on projects that entail significant risk and have substantial security implications.

  10. May be required to perform work after hours.

11.May participate in on-call rotations as needed.

  1. Understands and complies with bank policy, laws, regulations, and the bank’s BSA/AML Program, as applicable to job duties. This includes but is not limited to; completing compliance training and adhering to internal procedures and controls; reporting any known violations of compliance policy, laws, or regulations and reporting any suspicious customer and/or account activity.

TEAM ACCOUNTABILITIES:

  • Support and uphold the Arvest Mission Statement.

  • Uphold the Arvest Code of Ethics and ensure that confidential information is safeguarded.

  • Maintain a high level of cooperation and rapport with all associates to ensure accurate and efficient operations and service.

  • Formulate and communicate new ideas and suggestions that will improve profitability and efficiency for the company’s overall operation. Promote professionalism at all times.

Responsibilities:

QUALIFICATION REQUIREMENTS:

To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable qualified individuals with disabilities to perform the essential functions.

Requirements

Do you have experience in Vendor communication?, Do you have a Bachelor’s degree?, * Incident Response & Forensics: Proven ability to lead and execute complex security investigations (e.g., ransomware, insider threats, account compromise) in fast-paced, high-severity environments.

  • SIEM Mastery (Splunk): Hands-on experience with Splunk, including advanced SPL query development, correlation searches, alert tuning, dashboard creation, and log source onboarding/normalization.
  • Detection Engineering: Experience identifying monitoring gaps and building high-fidelity detections aligned to the MITRE ATT&CK framework, utilizing knowledge of malware behavior, persistence mechanisms, and lateral movement.
  • Advanced Threat Detection: Demonstrated expertise in monitoring and analyzing mid-size to large-scale network traffic to proactively identify behavioral anomalies and potential threats.
  • Endpoint & Enterprise Visibility: Strong understanding of Windows security events, Sysmon, Active Directory, authentication protocols, and enterprise EDR/XDR platforms (e.g., SentinelOne)., · Bachelor’s Degree in Computer Science or Information Security, or equivalent relevant work or military experience, required.
  • 4 years of relevant experience required.

  • Knowledge and understanding of relevant Information Security Management frameworks such as NIST, ISO, CIS, etc., is required.

  • Expert knowledge and understanding of threat hunting methodologies and techniques is required.

  • GIAC Cyber Threat Intelligence (GCTI), Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM) or equivalent certification, is preferred.

OTHER SKILLS AND ABILITIES:

  • Must be able to identify critical infrastructure systems that were designed without system security considerations.

  • Must be able to begin work on time and have regular work attendance.

  • Must be able to work cooperatively with other co-workers and customers, both existing and prospective, regardless of personality, presence, or communication style.

  • Must be able to perform several tasks at once and rotate job tasks.

  • Must be able to work in a stressful atmosphere.

  • Must be able to coordinate multiple and changing priorities.

  • Must be able to occasionally work outside of normal business hours.

  • Must be able to move from department, division, or bank to department, division, or bank to attend meetings.

  • Must be able to lead and participate in productive networks with internal and external business partners, process experts, and the vendor community.

  • Must be able to develop and deliver training and educational opportunities on security issues., The associate must be able to travel occasionally by themselves within the US, including overnight, and via automobile and air.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · WWC Europe 2026

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

2:39 min

Navigating strict environments for enterprise banking

Lea Fragner · LIVE

2:11 min

Securing heterogeneous legacy payment infrastructure against AI

Michele Zuccala Michele Zuccala +4 · WWC Europe 2026

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all